"KnowledgeTree
is open source document management software designed for business
people to use and install. Seamlessly connect people, ideas, and
processes to satisfy all your collaboration, compliance, and business
process requirements. KnowledgeTree works with Microsoft® Office®,
Microsoft® Windows® and Linux®."

(2) Vulnerability Details:

KnowledgeTree
web application has a computer security problem. Hackers can exploit it
by reflected XSS cyber attacks. This may allow a remote attacker to
create a specially crafted request that would execute arbitrary script
code in a user's browser session within the trust relationship between
their browser and the server.

Several
other similar products 0-day vulnerabilities have been found by some
other bug hunter researchers before. KnowledgeTree has patched some of
them. "Bugtraq is an electronic mailing list dedicated to issues about
computer security. On-topic issues are new discussions about
vulnerabilities, vendor security-related announcements, methods of
exploitation, and how to fix them. It is a high-volume mailing list, and
almost all new vulnerabilities are discussed there.". It has listed
similar exploits, such as Bugtraq (Security Focus) 32920.